Security Scan Report: ee-help-account.firebaseapp.com

Site favicon
Submitted: Sep 28, 2026, 7:53:35 AMCompleted: Sep 28, 2026, 7:54:12 AMpubliccompleted

AI Security Verdict

Moderate Risk

Confidence: 65%

5
Risk Score

Page titled 'EE' impersonating the UK telecom brand on a free firebaseapp.com subdomain, but no forms, IoCs, or malware were found — brand impersonation risk without observed credential harvesting.

Risk Factors (5)
Impersonation of the EE brand on a non-EE domain
Hosted on a free shared platform subdomain (firebaseapp.com) with unknown creation age
Unranked / no domain reputation
Account-help naming pattern commonly used by phishing landing pages
Page content did not load, so no legitimate purpose could be confirmed
Safety Factors (5)
No forms of any kind — 0 password, 0 payment, 0 email/username fields
No Indicators of Compromise matches against the page or its resources
No JavaScript malware (YARA) patterns detected
No credential exfiltration or cross-origin data submission observed
All JavaScript served from the site's own domain
Domain age information unavailable

Details

Page Title

EE

Scan Type

public

Domain Name Analysis

The domain name 'ee-help-account.firebaseapp.com' uses the commercial generic top-level domain (.com), featuring subdomain 'ee-help-account'. The second-level label 'firebaseapp' is 11 characters long split between 5 vowels and six consonants. Breaking it apart gives three words: fire, base, app. Median word length is four characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://ee-help-account.firebaseapp.com/

Page Load Overview

0.68s
Total Load Time
1.3 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:2 chars
Detector Agreement:0%

Website Classification

Primary Category

unknown0% confidence
Type: dynamic
Method: structural

All Detected Categories

No categories detected

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
8199.36.158.100Fastly · CDNUnited States
AS54113Fastly, Inc.
4172.67.69.226Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
4142.251.20.94Google · CDNUnited States
AS15169Google LLC
4192.178.183.94Google · CDNUnited States
AS15169Google LLC
4142.251.13.94Google · CDNUnited States
AS15169Google LLC
245--

Detected Technologies6

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T118B3027A950030ACA637987B7931BC8D2E104087905B68DBF5F67969C7DF2D12E7360E

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:GTLpmJIovoHA7hqU6oja+xmcPVo5TLClruXrOOTxUZnMoG534cCG:DwHihq+agmaNM7OCxUnnG94A

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:109047:eCCIQAiX6goWRgA4nKgRnSRTQiEiAzKAGGYBjjQAAJgSmAASQMziRAYoUAEwEcm5gGAFUiiRNM1BEkEQCtxQrAgGeEASOzrP

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffffffe7e7ffffff
Perceptual Hash:a2dd887722dd8873
Difference Hash:0000000808000000
Wavelet Hash:fcfcf0e0242c3c3c
Color Hash:#c1e06c

Other Hashes

Crop Resistant:0000000808000000

Scan History

Scan history not available

Unable to load historical scan data